Hacker News new | past | comments | ask | show | jobs | submit login

Thousands of dollars and hundreds of hours[1] have gone into security audits and improvements of Pidgin[2] and are not one-time things; this Google donation has recurred.

It makes little sense to me to pick up and move to another platform and product because it's written in JavaScript. The remaining bullet points in this wiki page appear to be fixable with a lot less directed effort than adopting and drastically changing an unpopular application.

[1] https://blog.wasilczyk.pl/en/2013/google-donates-pidgin-to-i... [2] http://pidgin.im/news/security/




And it is still shit and will continue to be shit because it has massive technical debt and is fundamentally flawed. Why throw good money after bad?


Were these auditing Pidgin specifically or libpurple as well?


Pidgin specifically but they encompassed libpurple as well. They are sort of the same codebase from Pidgin's perspective. Sort of.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: